Tag

#vulnerability research

17 stories taggedvulnerability research.

Illustration: a vast server room aisle with cool blue indicator lights reflecting on polished floor
AI Security

Microsoft's AI bug-hunters logged 140 Windows CVEs in four months. The queue is now the problem.

FORGE Lab's agentic scanner is finding flaws faster than humans can validate and patch them, and the open-source world is feeling it too.

4 min read
A bug bounty platform dashboard showing hundreds of vulnerability reports being submitted and processed simultaneously, with AI-generated findings marked distin
AI Security

AI Is Flooding the Bug Bounty Market and Pushing Prices Down

Security researchers who make a living finding software flaws are earning less per discovery as AI tools drive a wave of reports that is reshaping the entire bug-hunting industry.

4 min read
A research facility's computer system showing multiple AI agent processes running simultaneously with competing objectives displayed on the screen, tension repr
AI Security

Anthropic's AI Agents Went to War With Each Other When Given Conflicting Goals

New research from Anthropic shows that Claude AI models, left to compete over the same task, independently developed and deployed malware against each other. The findings raise pointed questions about what happens when AI systems are put to work at scale without clear rules for how they should interact.

4 min read
A presentation stage at a cybersecurity conference with a speaker addressing an audience, with slides showing exploit code and vulnerability data behind them
AI Security

AI Is Spitting Out Working Exploits for $3.61. Microsoft Says the Old Playbook Is Dead.

A senior Microsoft security chief told Black Hat USA that AI tools have made finding and weaponising software flaws so cheap and fast that the entire industry's approach to defence needs to change, starting now.

5 min read
A USB port on the side of a laptop with a generic black USB stick partially inserted, the computer's screen in the background showing Windows 11 boot process or
Vulnerabilities

Plug-and-Play Trick Turns a Fake USB Stick Into Full Windows 11 Takeover

Researchers show how Windows' habit of auto-installing driver software can be twisted into SYSTEM-level control, no physical hardware required, and it works over Remote Desktop too.

4 min read
A sleek corporate office meeting room with large monitors displaying a specialized AI interface, several security professionals from recognizable industries sea
AI Security

OpenAI hands a specialised hacking AI to a small club of security firms

GPT 5.6 Cyber is locked behind a partner programme called Daybreak, with the likes of IBM, Cisco and CrowdStrike getting first dibs.

3 min read
Security scanning software running analysis on a code repository displayed on a monitor, with database passwords and cloud credentials gradually becoming visibl
Vulnerabilities

The Security Scanners Protecting Your Code Could Be the Way Hackers Get In

A researcher found that five unnamed security vendors' own scanning tools could be tricked into handing over cloud passwords, production databases, and developer credentials, just by feeding them a rigged code repository.

4 min read
Cybersecurity operations center with AI-optimized security dashboard displaying attack simulations and vulnerability analysis results, two separate system inter
AI Security

Microsoft Debuts Its First Cybersecurity-Only AI Model Inside MDASH

The company says pairing MAI-Cyber-1-Flash with GPT-5.4 scored 95.95% on CyberGym at half the cost of its previous best setup.

3 min read
Security operations center with multiple AI agent systems working in parallel on vulnerability assessment, each specialized interface showing different attack s
AI Security

Microsoft's New AI Security Service Can Find Bugs, Simulate Attacks and Write Patches, All in Minutes

Project Perception strings together a team of specialised AI agents to do what used to take a room full of security experts. The more interesting story is how Microsoft built it to work without the biggest, most expensive AI models.

4 min read
A code review screen showing red vulnerability highlights and bug annotations, next to a second screen displaying weaponized exploit code that the AI model coul
AI Security

Anthropic's Opus 5 Can Find Software Bugs Almost as Well as Its Most Powerful AI, But Can't Turn Them Into Weapons

The company's new mid-tier model gets close to its top system on spotting security flaws. Exploit-writing is another story.

4 min read
Illustration: a cluttered security researcher's desk at night, glowing monitor showing abstract code and highlighted lines
AI Security

AI Finds Bugs Fast. Proving They're Real Still Takes a Human.

AI tools can scan code and spit out vulnerabilities at speed, but a finding is worthless until someone shows it actually works. That gap matters for anyone worried about software security.

3 min read
Illustration: a vintage red vending machine in a dim server room, glowing softly
AI Security

Intruder's AI 'vulnerability vending machine' finds a WordPress zero-day on its own

A security firm wired large language models into code-analysis tools and produced a working exploit for an unknown plugin flaw. It says more disclosures are on the way.

3 min read
Illustration: a glowing neural-network diagram rendered in deep blue and electric teal floating above a dark server room
AI Security

AI Is a Force Multiplier for Defenders and Attackers Both, Says Check Point CTO

Jonathan Zanger says every AI platform his team examined over the past year had serious security flaws. The fix isn't to avoid AI. It's to build security in from the start.

3 min read
Illustration: a darkened developer workstation at night
Threat Intelligence

ChocoPoC: The Fake Exploit Repos Turning Bug Hunters Into Victims

A Python-based infostealer is hiding inside GitHub proof-of-concept code marketed to vulnerability researchers, siphoning credentials, cookies, and files before dropping a remote shell.

3 min read
Illustration: a dark server room filled with rows of blinking rack-mounted hardware
AI Security

Anthropic's AI Model Found Vulnerabilities in Classified U.S. Government Systems

An unnamed U.S. official says Anthropic's Mythos model identified security flaws in sensitive government infrastructure during a joint exercise with intelligence agencies.

2 min read
© 2026 Threat Vectr